We are seeking a Security Analyst to support the organization’s Third-Party Risk Management (TPRM) program, with a primary focus on application and security architecture reviews of external vendors and SaaS providers.
This role sits at the intersection of security architecture, vendor assessment, and GRC reporting. The analyst will evaluate vendor-provided documentation, analyze cloud-based technology stacks, and produce structured security assessment outputs that feed directly into the GRC team’s formal risk reporting process.
A key part of this role involves working with incomplete or unclear vendor documentation and performing independent research (including OSINT techniques) to accurately understand vendor architectures and security posture.
Key Responsibilities
Architecture diagrams
Required Skills & Experience
Strong ability to interpret:
Highly Preferred
Key Traits for Success

SilverSky

BCD Travel

Abnormal Security

Defense Unicorns

Sarnova

KMC Solutions

KMC Solutions

KMC Solutions